Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 30 Apr 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 29 Apr 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Free Download Manager 2.0 Built 417 contains a local buffer overflow vulnerability in the URL import functionality that allows attackers to trigger a structured exception handler (SEH) chain exploitation. Attackers can craft a malicious URL file that, when imported through the File > Import > Import lists of downloads menu, causes a buffer overflow in the Location header response that overwrites the SEH chain and executes arbitrary code. | |
| Title | Free Download Manager 2.0 Built 417 Local Buffer Overflow SEH | |
| First Time appeared |
Freedownloadmanager
Freedownloadmanager free Download Manager |
|
| Weaknesses | CWE-120 | |
| CPEs | cpe:2.3:a:freedownloadmanager:free_download_manager:2.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Freedownloadmanager
Freedownloadmanager free Download Manager |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-04-30T12:40:48.181Z
Reserved: 2026-04-29T12:07:57.580Z
Link: CVE-2018-25304
Updated: 2026-04-30T12:40:43.781Z
Status : Deferred
Published: 2026-04-29T20:16:25.760
Modified: 2026-04-30T15:44:48.290
Link: CVE-2018-25304
No data.
OpenCVE Enrichment
Updated: 2026-04-30T14:00:22Z